recommended reading

Threatwatch

Exiled Syrian tracked the porn habits of Assad’s spies

Cyber espionage; Unauthorized use of user privileges

The hacktivist claims to have infiltrated the systems of the country’s brutal police to find evidence that “officers spent their working days watching pornography,” Forbes reports.

The individual, a member of a youth wing of the Syrian opposition, fled to Europe last year after several of his colleagues were arrested by the intelligence agency.

The group had been probing the systems used to snoop on the population of Syria. They uncovered details on hard-core pornography watched by the agency, which is known for its sadism and brutality.

“It was easy to look at the secret police’s systems, which were left wide open to public view. The information they held was scary,” a source told Forbes. “But despite the amount of data kept on the Mukhabarat systems, the security was extremely lax and unsophisticated. We were able to observe the different pornographic habits of each of the agents’ bases, as well as records of the web traffic of much of the Syrian population. What we found was that agents would watch pornography whilst at work.”

The hacker purports to be attempting to expose the Syrian regime’s use of deep packet inspection hardware made by Blue Coat, a U.S. company. The firm has denied giving the technology to Syria, where it is used to filter the Internet and identify dissenters.

The group apparently piggybacked off data leaked earlier by Telecomix, which contained 54 gigabytes of records showing spies recorded ordinary citizens’ IP addresses and which sites they attempted to access.

The anti-government activists then accessed uncensored versions of these logs, showing the web activity of the government and secret police. This allowed them to identify the IP addresses of secret police bases which had permission to bypass the filter set up to black out parts of the Internet.

“They were then able to see that agents had accessed sites like xHamster, Youporn and even the casual dating website Adult FriendFinder, which were otherwise banned to the rest of the Syrian public,” Forbes writes.

ThreatWatch is a regularly updated catalog of data breaches successfully striking every sector of the globe, as reported by journalists, researchers and the victims themselves.

sector

Government (Foreign)

reported

November 20, 2013

reported by

Forbes

number affected

Unknown

location of breach

Syria

perpetrators

Hacktivists

location of perpetrators

Unknown

date breach occurred

2012

date breach detected

Unknown

Thank you for subscribing to newsletters from Nextgov.com.
We think these reports might interest you:

  • Modernizing IT for Mission Success

    Surveying Federal and Defense Leaders on Priorities and Challenges at the Tactical Edge

    Download
  • Communicating Innovation in Federal Government

    Federal Government spending on ‘obsolete technology’ continues to increase. Supporting the twin pillars of improved digital service delivery for citizens on the one hand, and the increasingly optimized and flexible working practices for federal employees on the other, are neither easy nor inexpensive tasks. This whitepaper explores how federal agencies can leverage the value of existing agency technology assets while offering IT leaders the ability to implement the kind of employee productivity, citizen service improvements and security demanded by federal oversight.

    Download
  • Effective Ransomware Response

    This whitepaper provides an overview and understanding of ransomware and how to successfully combat it.

    Download
  • Forecasting Cloud's Future

    Conversations with Federal, State, and Local Technology Leaders on Cloud-Driven Digital Transformation

    Download
  • IT Transformation Trends: Flash Storage as a Strategic IT Asset

    MIT Technology Review: Flash Storage As a Strategic IT Asset For the first time in decades, IT leaders now consider all-flash storage as a strategic IT asset. IT has become a new operating model that enables self-service with high performance, density and resiliency. It also offers the self-service agility of the public cloud combined with the security, performance, and cost-effectiveness of a private cloud. Download this MIT Technology Review paper to learn more about how all-flash storage is transforming the data center.

    Download

When you download a report, your information may be shared with the underwriters of that document.